Tag
high
advisory
FFmpeg Heap Out-of-Bounds Write Vulnerability (CVE-2026-66036)
1 CVEA heap out-of-bounds write vulnerability exists in FFmpeg through version 8.1.2, specifically within the vf_hqdn3d filter, allowing attackers to corrupt heap memory by providing a crafted video input where frame resolution increases between frames while filtergraph reinitialization is disabled, leading to undersized buffers and a write beyond allocation boundaries.
FFmpeg
vulnerability
heap-corruption
code-execution
dos
1c
high
advisory
CVE-2026-66032 - libssh2 SFTP Double-Free Vulnerability
4 TTPs 4 CVEsA double-free vulnerability, CVE-2026-66032, in libssh2 versions through 1.11.1 allows a malicious SSH server to corrupt the heap of an authenticated client opening an SFTP session, potentially leading to arbitrary code execution.
libssh2 <= 1.11.1
ssh
sftp
double-free
vulnerability
libssh2
memory-corruption
rce
DoS
+2
4t
4c